Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Secure .gov websites use HTTPS
A lock ( ) or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.

NIST SP 800-218

Secure Software Development Framework (SSDF) Version 1.1: Recommendations for Mitigating the Risk of Software Vulnerabilities

Date Published: February 2022

Supersedes: CSWP 13 (04/23/2020)

Author(s)

Murugiah Souppaya (NIST), Karen Scarfone (Scarfone Cybersecurity), Donna Dodson

Abstract

Keywords

secure software development; Secure Software Development Framework (SSDF); secure software development practices; software acquisition; software development; software development life cycle (SDLC); software security
Control Families

None selected